I have a FG200D that is a landing zone for 10 /29's via IPSec tunnels.
I need to make each /29 landing NAT to identical IP on the other network
e.g. 10.10.10.24/29 network lands IPSEC and then is translated to 11.11.11.24/29.
I have tried central NAT, SNAT, and DNAT and nothing seems to be working.
Any assistance would be appreciated.
v/r
HutcH
Have you tried using IP Pools? I have a few 1 to 1 Overload IP Pools setup where the External IP Range start and ending address are the same. I then use these in my policies with NAT on and the option to Use Dynamic IP Pool. Just select the IP Pool from the list.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1736 | |
1107 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.